8210 Security Awareness Training V2 NewLogo

1
Overview: Develop, deliver and document a security awareness and educaon program. Idenfy posions, systems and applicaons with significant informaon security responsibilies and provide specialized training to ensure that personnel are appropriately trained. The security awareness training and educaon program shall encompass basic security and privacy awareness, specialized security awareness training, and acceptable-use rules of the state informaon system. Security awareness training administered to employees and contractors with access to state informaon systems will be documented and tracked, including periodic refresher educaon courses. All employees or contractors who complete security awareness training and educaon programs shall acknowledge and accept that they have read and understand the state informaon system requirements regarding informaon security policy and procedures. The security awareness training and educaon program shall be periodically reviewed and updated to reflect changes to informaon security threats, techniques, requirements, responsibilies and changes to the rules of the system. Purpose: Ensures that all state employees and contractors are appropriately trained and educated on how to fulfill their informaon security responsibilies Why it’s important: Employees gain a greater awareness and understanding of the informaon security measures that are currently in place. Security awareness training and educaon safeguards against accidental vulnerabilies or potenal security breaches. Target audience: All personnel 06.16.14 8210 IT SECURITY POLICY 8210 IT SECURITY POLICY Security Awareness Training and Educaon Security Awareness Training and Educaon All employees or contractors are required to participate in security awareness training and education. The program content, delivery and training materials are reviewed and updated on a regular basis to reflect current security threats, techniques, requirements and staff roles. All employees or contractors who complete security awareness training and education are provided with an effective way to provide feedback. Security awareness education protects state assets and information, as well as safeguards against possible security breaches. All employees and contractors will also be trained on the Acceptable Use Policy to ensure the practice of safe computing and to protect state information systems and data. For more informaon about this IT Security Policy, contact [email protected]. 07.07.14 5

Transcript of 8210 Security Awareness Training V2 NewLogo

Page 1: 8210 Security Awareness Training V2 NewLogo

Overview:

• Develop, deliver and document a security awareness and education program.

• Identify positions, systems and applications with significant information security responsibilities and provide specialized training to ensure that personnel are appropriately trained.

• The security awareness training and education program shall encompass basic security and privacy awareness, specialized security awareness training, and acceptable-use rules of the state information system.

• Security awareness training administered to employees and contractors with access to state information systems will be documented and tracked, including periodic refresher education courses.

• All employees or contractors who complete security awareness training and education programs shall acknowledge and accept that they have read and understand the state information system requirements regarding information security policy and procedures.

• The security awareness training and education program shall be periodically reviewed and updated to reflect changes to information security threats, techniques, requirements, responsibilities and changes to the rules of the system.

Purpose:Ensures that all state employees and contractors are appropriately trained and educated on how to fulfill their information security responsibilities

Why it’s important:Employees gain a greater awareness and understanding of the information security measures that are currently in place. Security awareness training and education safeguards against accidental vulnerabilities or potential security breaches.

Target audience:All personnel

06.16.14

8210IT SECURITY POLICY

8210IT SECURITY POLICYSecurity Awareness

Training and EducationSecurity Awareness

Training and Education

All employees or contractors are required toparticipate in security awareness training and education.

The program content, delivery and training materials are reviewed and updated on a regular basis to reflect current security threats, techniques, requirements and staff roles.

All employees or contractors who complete security awareness training and education are provided with an effective way to provide feedback.

Security awareness education protects state assets and information, as well as safeguards against possible security breaches.

All employees and contractors will also be trained on the Acceptable Use Policy to ensure the practice of safe computing and to protect state information systems and data.

For more information about this IT Security Policy, contact [email protected].

07.07.14

5